Cisco Sourcefire Snort 3.0 before build 233 has a Buffer Overread related to use of a decoder array. The size was off by one making it possible to read past the end of the array with an ether type of 0xFFFF. Increasing the array size solves this problem.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-15712 | Cisco Sourcefire Snort 3.0 before build 233 has a Buffer Overread related to use of a decoder array. The size was off by one making it possible to read past the end of the array with an ether type of 0xFFFF. Increasing the array size solves this problem. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2024-08-05T15:33:20.437Z
Reserved: 2017-03-09T00:00:00
Link: CVE-2017-6658
No data.
Status : Deferred
Published: 2017-05-16T17:29:00.417
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-6658
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD